A vulnerability was found in openBI up to 1.0.8 and classified as critical. This issue affects the function uploadIcon of the file /application/index/controller/Screen.php of the component Icon Handler. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252311.
History

Thu, 17 Oct 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-01-30T17:31:04.867Z

Updated: 2024-10-17T18:00:15.188Z

Reserved: 2024-01-29T14:09:42.429Z

Link: CVE-2024-1036

cve-icon Vulnrichment

Updated: 2024-08-01T18:26:30.416Z

cve-icon NVD

Status : Modified

Published: 2024-01-30T18:15:47.300

Modified: 2024-11-21T08:49:39.210

Link: CVE-2024-1036

cve-icon Redhat

No data.